Impact
This vulnerability arises from improper buffer restrictions in the Intel PROSet/Wireless WiFi Software device drivers running in Ring 2. An attacker can send crafted network packets that trigger a buffer overflow or similar memory corruption, leading to a denial of service. The flaw causes loss of availability of the affected system; there is no impact on confidentiality or integrity.
Affected Systems
Affected systems are Windows machines running the Intel PROSet/Wireless WiFi Software for Windows. Specific version information is not provided, so all versions that include the vulnerable drivers should be considered.
Risk and Exploitability
The CVSS score is 7.1, indicating a moderate to high severity. With an EPSS score of less than 1% the likelihood of exploitation is low, and the vulnerability is not currently listed in the CISA KEV catalog. The attack can be carried out by a network adversary with no authentication and low complexity, and does not require user interaction, which makes it potentially exploitable with standard network tools.
OpenCVE Enrichment